
To guide organizations in fulfilling their HIPAA obligations, HHS has published what are commonly known as the HIPAA Privacy Rule and the HIPAA Security Rule. The “Privacy Rule,” or Standards for Privacy of Individually Identifiable Health Information, establishes national standards for keeping certain health information confidential.

The Security Standards for the Protection of Electronic Protected Health Information (the “Security Rule”) establish a national set of security standards for keeping certain health information secure while it is being held or transferred in electronic form. Organizations that act in support of Covered Entities, as defined in HIPAA, are “Business Associates.” Cloud storage providers, such as SpiderOak, that support Covered Entities through the storage of PHI are Business Associates.
SPIDEROAK SEMAPHOR UPDATE
The latest update to HIPAA requires, among others, healthcare providers, medical institutions, and cloud storage services supporting those entities where PHI is involved to be compliant with HIPAA rules and regulations. If they are found not to be in compliance, they may have to pay fines up to $1.5 million dollars. In order to comply with HIPAA, cloud service providers have to enforce stringent security policies for protecting the privacy and confidentiality of user data. With its No Knowledge privacy approach, the SpiderOak One desktop, CrossClave desktop and mobile, and Semaphor desktop and mobile applications encrypt the data on the user’s device before uploading the data to the cloud or syncing it across other devices. The data remains encrypted until the user requests the data, which is then delivered back to the user’s computer in its encrypted state until the user decrypts it with the password.īecause the SpiderOak One, CrossClave, and Semaphor desktop applications store user data in encrypted form, it also provides the highest degree of protection against security breaches. When sensitive information is stored in plaintext form, there is always a risk of data being compromised during cyber attacks, resulting in compliance violations. Even if unauthorized personnel are able to access the server, all they can see is encrypted, unintelligible data.
SPIDEROAK SEMAPHOR HOW TO
You can find more information about how to request a SpiderOak Business Associate Agreement here. For any inquiries regarding PHI, HIPAA, security, privacy, please contact Attn: HIPAA Compliance.Below is a listing of SpiderOak’s recent product release notes.

SpiderOak CrossClave 2.7.0 Release Notes, SpiderOak CrossClave 2.8.0 Release Notes, SpiderOak CrossClave 2.9.0 Release Notes, SpiderOak CrossClave 2.15.0 Release Notes, SpiderOak CrossClave 2.16 Release Notes, SpiderOak CrossClave 2.16.2 Release Notes, These include releases of SpiderOak CrossClave, SpiderOak One Backup, SpiderOak Groups, Semaphor, and Encryptr. One and Groups Backup 7.5.0 Release Notes, FebruSpiderOak Share 1.2.0 Release Notes 18 February 2019 SpiderOak Share 1.3.0 Release Notes 12 March 2019 One and Groups Backup 7.5.1 Release Notes SpiderOak CrossClave 2.3.0 Release Notes SpiderOak CrossClave 2.4.0 Release Notes SpiderOak CrossClave 2.5.0 Release Notes, SpiderOak CrossClave 2.6.0 Release Notes,

Share 1.1.0 Release Notes 19 December 2018 Share 1.1.1 Release Notes 26 December 2018
